Alerts This Week
Warning Icon 1 1,234
Alerts This Week
Warning Icon 1 1,234

SUSE Firewalld Moderate D-Bus Local Access Issue 2026-22263-1

suse
Calendar Grey June 29, 2026
Dist Suse Esm H88
Install the latest SUSE security update for firewalld to address critical issues including unauthorized local modifications.
An update that solves one vulnerability can now be installed.

Summary

## This update for firewalld fixes the following issue * CVE-2026-4948: local unprivileged users can modify firewall state due to D-Bus setter mis-authorizations (bsc#1260903). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.2 zypper in -t patch SUSE-SL-Micro-6.2-1045=1 ## Package List: * SUSE Linux Micro 6.2 (noarch) * python3-firewall-2.1.2-160000.3.1 * firewalld-2.1.2-160000.3.1

References

* bsc#1260903

Cross-

* CVE-2026-4948

CVSS scores:

* CVE-2026-4948 ( SUSE ): 6.8

CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N

* CVE-2026-4948 ( SUSE ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

* CVE-2026-4948 ( NVD ): 5.5 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

Affected Products:

* SUSE Linux Micro 6.2

An update that solves one vulnerability can now be installed.

##

* https://www.suse.com/security/cve/CVE-2026-4948.html

* https://bugzilla.suse.com/show_bug.cgi?id=1260903

Severity
moderate
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:22263-1
Release Date: 2026-06-22T15:08:58Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here